ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 80 - PT0-003 discussion

Report
Export

A penetration tester is conducting a wireless security assessment for a client with 2.4GHz and 5GHz access points. The tester places a wireless USB dongle in the laptop to start capturing WPA2 handshakes. Which of the following steps should the tester take next?

A.
Enable monitoring mode using Aircrack-ng.
Answers
A.
Enable monitoring mode using Aircrack-ng.
B.
Use Kismet to automatically place the wireless dongle in monitor mode and collect handshakes.
Answers
B.
Use Kismet to automatically place the wireless dongle in monitor mode and collect handshakes.
C.
Run KARMA to break the password.
Answers
C.
Run KARMA to break the password.
D.
Research WiGLE.net for potential nearby client access points.
Answers
D.
Research WiGLE.net for potential nearby client access points.
Suggested answer: A

Explanation:

Monitoring Mode:

Definition: Monitoring mode allows a wireless network interface controller to capture all packets on a wireless channel, regardless of the destination.

Importance: This mode is necessary for capturing the four-way handshake required for WPA2 cracking.

Aircrack-ng Suite:

Aircrack-ng: A complete suite of tools to assess Wi-Fi network security. It includes tools for monitoring, attacking, testing, and cracking.

Enabling Monitor Mode: The specific tool used to enable monitor mode in Aircrack-ng is airmon-ng.

airmon-ng start wlan0

This command starts the interface wlan0 in monitoring mode.

Steps to Capture WPA2 Handshakes:

Enable Monitor Mode: Use airmon-ng to enable monitor mode.

Capture Handshakes: Use airodump-ng to capture packets and WPA2 handshakes.

airodump-ng wlan0mon

Pentest

Reference:

Wireless Security Assessments: Understanding the importance of monitoring mode for capturing data during wireless penetration tests.

Aircrack-ng Tools: Utilizing the suite effectively for tasks like capturing WPA2 handshakes, deauthenticating clients, and cracking passwords.

By enabling monitoring mode with Aircrack-ng, the tester can capture the necessary WPA2 handshakes to further analyze and attempt to crack the Wi-Fi network's password.

asked 02/10/2024
Sandesh Somaiah
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first